the grugq's newsletter

Subscribe
Archives
October 22, 2025

October 23, 2025

October 23, 2025

1/ Who wins in the Information Security AI arms race: Defenders? Attackers? or the new AI tools just cancel each other?
Our answer...๐Ÿ‘‡ pic.twitter.com/PyX9rorBYZ

โ€” Tal Be'ery (@TalBeerySec) October 21, 2025


Latest blog from @0xdab0 on C2-less malware featured in @jackclarkSF's Substack โžก๏ธ https://t.co/2fRMVJYaYh

โ€” dreadnode (@dreadnode) October 20, 2025


Yo this z3bra dude is fuckin COOKIN

Holy guacamole brohttps://t.co/tyn116TEIp

โ€” vx-underground (@vxunderground) October 21, 2025


SCOOP: A man who worked on developing hacking tools for defense contractor L3Harris Trenchant was notified by Apple that his iPhone was targeted with spyware.

It's unclear who targeted him, but he believes he was the scapegoat of a leak investigation. https://t.co/dWAhfdE6Tw

โ€” Lorenzo Franceschi-Bicchierai (@lorenzofb) October 21, 2025


Custom allocators are prime targets for MTE/MIE, waiting to see full details of this research. https://t.co/Re4PJ89ss3

โ€” Jonathan Bar Or (JBO) ๐Ÿ‡ฎ๐Ÿ‡ฑ๐Ÿ‡บ๐Ÿ‡ธ๐Ÿ‡บ๐Ÿ‡ฆ๐ŸŽ—๏ธ (@yo_yo_yo_jbo) October 21, 2025


From Zero to QEMU: A journey into system emulation (slide deck by Antonio Nappa)https://t.co/bYgH3zq83f#infosec #qemu pic.twitter.com/larzXo1HnC

โ€” 0xor0ne (@0xor0ne) October 21, 2025


Never seen this ClickFix method before. pic.twitter.com/EUBB5yfN7e

โ€” Reid H. (@Reid0nly) October 20, 2025


Latest blog from @0xdab0 on C2-less malware featured in @jackclarkSF's Substack โžก๏ธ https://t.co/2fRMVJYaYh

โ€” dreadnode (@dreadnode) October 20, 2025


this is exactly what i would say if i ran a colored pencil shop for 30 years and i had no idea where each one of the thousands of pencils was https://t.co/s4AdMYrj05

โ€” behold the riant anthropoid (@spitemeter) October 21, 2025


My slides from #OBTS (BlueNoroff's Clues w/ @birchb0y) and the @objective_see #WeTalks (Slide Hustle) are now up. They are keynotes, so feel free to download. Additionally, I'm working on my first tutorial on building slides - coming soon. Enjoy!https://t.co/PjeB151Qoo

โ€” Stuart Ashenbrenner ๐Ÿ‡บ๐Ÿ‡ธ ๐Ÿ‡จ๐Ÿ‡ฆ (@stuartjash) October 21, 2025


https://risky.biz/BTN141/


Today I learned: Using diskshadow to fetch the NTDS.dit. As mentioned several times, I love reading the HTB writeups from 0xdf because I always learn something new. Like here [1]:

"To dump the domain hashes, Iโ€™ll want to get theย C:\Windows\NTDS.ditย file. Unfortunately, this fileโ€ฆ

โ€” Stephan Berger (@malmoeb) October 22, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X